Close Menu
  • Start
  • Celebrities
  • Music
  • Influencers
  • Tendencies
  • Exclusives
  • Business & Brands
  • TwinH
  • Spanish
What's Hot

Sheryl Crow calls Trump’s UFC B-Day brawl on the White House lawn ‘disgraceful’

This lifetime AI-powered piano app teaches you as you play for $99.97 during Deal Day.

Bonnie Tyler has recovered from coma but remains ‘very unwell’ after emergency surgery

Facebook X (Twitter) Instagram
  • Home
  • About The FYMOUS
  • Advertising / Promotion
  • Contact
  • DMCA
  • Privacy Policy
  • Terms
  • Publish News
Facebook X (Twitter) Instagram
FYMOUS News
  • Start
  • Celebrities
  • Music
  • Influencers
  • Tendencies
  • Exclusives
  • Business & Brands
  • TwinH
  • Spanish
FYMOUS News
Home » DSLOGDRAT malware deployed via Ivanti ICS Zero-Day CVE-2025-0282 in Japan’s attack
Celebrities

DSLOGDRAT malware deployed via Ivanti ICS Zero-Day CVE-2025-0282 in Japan’s attack

By April 25, 2025No Comments3 Mins Read
Share Facebook Twitter Pinterest Telegram LinkedIn Tumblr Email Copy Link
Follow Us
Google News Flipboard
Share
Facebook Twitter LinkedIn Pinterest Email Copy Link

April 25, 2025Ravi LakshmananVulnerability/Network Security

dslogdrat malware

Cybersecurity researchers have warned about a new malware called Dslogdrat, which is currently installed following the exploitation of Ivanti Connect Secure (ICS)’s currently patched security flaws.

The malware was installed along with Web Shell by leveraging the zero-day vulnerability of CVE-2025-0282 during an attack on Japanese organizations around December 2024,” JPCERT/CC researcher Uma Masbuchi said in a report released Thursday.

CVE-2025-0282 refers to a serious security flaw in ICS, allowing for uncertified remote code execution. Addressed by Ivanti in early January 2025.

Cybersecurity

However, this drawback is being utilized as a zero day by the China-Nexus Cyberspy Group called UNC5337 to provide Malware’s spawning ecosystem and other tools such as Dryhook and PhaseJam. The latter two malware stock deployment is not attributable to known threat actors.

Since then, both JPCERT/CC and the US Cybersecurity and Infrastructure Security Agency (CISA) have revealed the exploitation of the same vulnerability to deliver an updated version of Spawn, known as SpawnChimera and Resurge.

Earlier this month, Google-owned Mandiant revealed that another security flaw in ICS (CVE-2025-22457) had been weaponized to distribute Spawn. This is malware caused by another Chinese hacking group called UNC5221.

JPCERT/CC said it is currently unclear whether the attack using DSLOGDRAT is part of the same campaign, which includes the spawn malware family run by UNC5221.

The attack sequence outlined by the agency involves the use of CVE-2025-0282 to deploy the PERL web shell. This serves as a conduit for deploying additional payloads containing DSLOGDRAT.

DSLOGDRAT is waiting for further instructions that can start contacting an external server over a socket connection, send basic system information, run shell commands, upload/download files, and use the infected host as a proxy.

Cybersecurity

This disclosure comes when threat intelligence company Greynoise warns about “9x suspicious scan activity spikes” and more than 1,000 unique IP addresses in the last 90 days, targeting ICS and Ivanti Pulse Secure (IPS) appliances from over 270 unique IP addresses over the last 24 hours.

Of these 255 IP addresses, they are classified as malicious and 643 is flagged as suspicious. Malicious IPs have been observed using TOR exit nodes, and suspicious IPSs are linked to lesser known hosting providers. The US, Germany and the Netherlands account for the top three source countries.

“This surge could indicate a possibility of coordinated reconnaissance and preparations for future exploitation,” the company said. “There is no particular CVE tied to this scan activity yet, but these spikes often precede active exploitation.”

Did you find this article interesting? Follow us on Twitter and LinkedIn to read exclusive content you post.

Source link

Follow on Google News Follow on Flipboard
Share. Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
Previous ArticleA sustainable solution to down cows
Next Article 3D satellite monitoring helps protect forests from climate change

Related Posts

Duchess Kate wears Patrick McDowell bespoke with Order of the Garter

June 15, 2026

Melania Trump shows off her high fashion look in Dolce & Gabbana at UFC 250

June 15, 2026

Laverne Cox brings back Mugler’s 2001 spider dress at Seattle Pride Gala

June 14, 2026
Add A Comment
Leave A Reply Cancel Reply

Latest Posts

Sheryl Crow calls Trump’s UFC B-Day brawl on the White House lawn ‘disgraceful’

This lifetime AI-powered piano app teaches you as you play for $99.97 during Deal Day.

Bonnie Tyler has recovered from coma but remains ‘very unwell’ after emergency surgery

Choose a new language (or 25 languages) with this $127 Rosetta Stone sale

Trending Posts

Sheryl Crow calls Trump’s UFC B-Day brawl on the White House lawn ‘disgraceful’

June 16, 2026

Bonnie Tyler has recovered from coma but remains ‘very unwell’ after emergency surgery

June 16, 2026

Jelly Roll files for divorce from Bunny XO after 10 years of marriage

June 16, 2026

Subscribe to News

Subscribe to our newsletter and never miss our latest news

Please enable JavaScript in your browser to complete this form.
Loading

Welcome to The FYMOUS, a modern digital media platform dedicated to celebrities, artists, influencers, brands, entertainment culture, and the growing TwinH ecosystem.

We bring audiences closer to the people, stories, trends, and collaborations shaping today’s culture. From exclusive celebrity news and music releases to influencer highlights, brand partnerships, and TwinH activations, The FYMOUS delivers engaging content designed for the next generation of digital audiences.

Castilla-La Mancha Ignites Innovation: fiveclmsummit Redefines Tech Future

Local Power, Health Innovation: Alcolea de Calatrava Boosts FiveCLM PoC with Community Engagement

The Future of Digital Twins in Healthcare: From Virtual Replicas to Personalized Medical Models

Human Digital Twins: The Next Tech Frontier Set to Transform Healthcare and Beyond

Facebook X (Twitter) Instagram Pinterest YouTube
  • Home
  • About The FYMOUS
  • Advertising / Promotion
  • Contact
  • DMCA
  • Privacy Policy
  • Terms
  • Publish News
© 2026 news.fyself. Designed by by fyself.

Type above and press Enter to search. Press Esc to cancel.